First published: Fri Sep 02 2022(Updated: )
BlueZ before 5.59 allows physically proximate attackers to cause a denial of service because malformed and invalid capabilities can be processed in profiles/audio/avdtp.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BlueZ BlueZ | <5.59 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =20.04 | |
Debian Debian Linux | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-39177 is a vulnerability in BlueZ before 5.59 that allows physically proximate attackers to cause a denial of service.
CVE-2022-39177 can be exploited by physically proximate attackers to cause a denial of service on BlueZ.
CVE-2022-39177 has a severity rating of 8.8 (high).
BlueZ versions before 5.59 are affected by CVE-2022-39177. Specifically, it affects BlueZ on Ubuntu Linux 18.04 LTS, Ubuntu Linux 20.04 LTS, and Debian Linux 10.0.
To mitigate the CVE-2022-39177 vulnerability, it is recommended to update BlueZ to version 5.59 or later.